Sorry, this listing is no longer accepting applications. Don’t worry, we have more awesome opportunities and internships for you.

Security Architect, Security & Compliance (AWS)

Strategi.biz

Security Architect, Security & Compliance (AWS)

San Francisco, CA
Full Time
Paid
  • Responsibilities

    The Security & Compliance team ensures that this client is a secure and privacy-minded location platform. They take an engineering-driven approach to keeping our employees and millions of end-users safe from real-world threats. Their services empower the company to move fast in a highly competitive market with a risk-informed and automation-driven approach to security. We provide the tools, information, and training to help every team to understand and own their security surface area, and they earn the trust of their customers by attaining certifications that attest to the maturity of our security and operations.

    This client is looking for a talented Security Architect to join their team.

    As a member of the Security & Compliance team, you'll report to the Security Engineering Manager and work alongside them to provide and execute a vision of total security over this client's AWS infrastructure, code repositories, CI/CD pipelines, product launches, and data classification.

    You can expect to work in a highly visible, cross-functional role, serving as an advisor and highest-escalation resource to stakeholders across the company, compliance auditors, and this client's largest external customers.

    You'll work hands-on with the code that runs their Security Engineering systems and integrates with third-party security software as you also mentor rising team members.

    You will be responsible for contributing to, operating, and improving all things related to this client's security and compliance services.

    Tasks and Responsibilities:

    • Build well-architected and relevant cloud-based data classification and threat detection systems that integrate with our internal platform for assessing and resolving risk vectors

    • Support internal customers of security and compliance services by overseeing features to address their needs, consulting on pain points, and designing improvements to our internal team interfaces

    • Partner with other internal product teams to implement a secure-by-default design into their own products

    • Conduct health assessments on the state of our vulnerability management systems and implement improvements as part of your vision of total security

    • Represent this client’s security posture and the maturity of our operations to customers and in public settings like conferences

    • Promote a culture of operational excellence by meticulously testing and monitoring our team’s systems and code and being the highest on-call escalation to support the health of our services across the company

    • Design systems and make decisions that will keep pace with the rapid growth of this Series-D startup and the state of security

    • Uphold a culture of collaboration, transparency, creativity, inclusion, and data-driven decisions

    Required Skills/Experience:

    • 10+ years of experience in product or infrastructure security-related software engineering roles

    • Master's degree in Cybersecurity or related fields preferred

    • Experience with their tech stack—GitHub, Node.js, Docker, AWS (CloudFormation, ECS, Lambda, DynamoDB, and more)

    • Experience leading infosec compliance initiatives, with specific oversight of compliance for SOC 2, GDPR, and ISO 27001 standards

    • Proven ability to design, develop, and incorporate low-friction, innovative, and reliable services that integrate security into the fabric of a cloud-based product

    • Clear and persuasive communication of complex and critical information to a broad audience

    • Wide expertise in security best practices and the ability to quickly make correct risk assessments that prioritize the overall benefit to the company

    • The willingness to teach, mentor, and guide teammates and others, but just as importantly, the patience to listen, learn, and dive deep

    • A desire to work with individuals with diverse backgrounds, perspectives, and experiences

    • Track record of exercising sound judgment under pressure, managing multiple complex engagements simultaneously, and building consensus across diverse stakeholders. Appropriate discretion concerning the most sensitive investigations and measured response relative to risk